{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:25:01Z","timestamp":1750307101821,"version":"3.41.0"},"reference-count":26,"publisher":"Association for Computing Machinery (ACM)","issue":"6","license":[{"start":{"date-parts":[[2012,11,27]],"date-time":"2012-11-27T00:00:00Z","timestamp":1353974400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["SIGSOFT Softw. Eng. Notes"],"published-print":{"date-parts":[[2012,11,27]]},"abstract":"<jats:p>Data Warehouse (DW) systems maintain sensitive and crucial information, which is integrated from various heterogenous sources of organization. With the ever increasing deployment and usage of networks, these systems are becoming more vulnerable to malicious attacks. With the increased number of attacks, intrusion detection has become vital part of Information Security. In this paper, we have proposed a model for analyzing and detecting anomalous events based on user behavior analysis through usage patterns, user profiles and session management. After monitoring the events in the system, if any intrusion activity occurs, then alerts are issued to system administrators. Since a user profile is not necessarily fixed but rather it evolves with changing time, so a dynamic user behavior modeling is represented as a sequence of events and combination of fact and dimension tables accessed by the users. In this way, DW systems may be protected by the malicious attacks.<\/jats:p>","DOI":"10.1145\/2382756.2382771","type":"journal-article","created":{"date-parts":[[2012,11,29]],"date-time":"2012-11-29T15:02:27Z","timestamp":1354201347000},"page":"1-7","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["A proposed model for data warehouse user behaviour using intrusion detection system"],"prefix":"10.1145","volume":"37","author":[{"given":"Indu","family":"Singh","sequence":"first","affiliation":[{"name":"Guru Gobind Singh Indraprastha University, Delhi, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Manoj","family":"Kumar","sequence":"additional","affiliation":[{"name":"Guru Gobind Singh Indraprastha University, Delhi, India"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2012,11,27]]},"reference":[{"key":"e_1_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.1987.232894"},{"key":"e_1_2_1_2_1","volume-title":"Building the Data Warehouse","author":"Inmon W.H.","year":"1992","unstructured":"Inmon , W.H. , Building the Data Warehouse . John Wiley , ( 1992 ). Inmon, W.H., Building the Data Warehouse. John Wiley, (1992)."},{"key":"e_1_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.5555\/1197243"},{"key":"e_1_2_1_4_1","first-page":"101","article-title":"al, Towards the secure modeling of OLAP user's behaviour, springer-verlag Berlin Heidelberg SDM","volume":"6538","author":"Carlos","year":"2010","unstructured":"Carlos et. al, Towards the secure modeling of OLAP user's behaviour, springer-verlag Berlin Heidelberg SDM , LNCS 6538 , pp 101 -- 112 ( 2010 ). Carlos et.al, Towards the secure modeling of OLAP user's behaviour, springer-verlag Berlin Heidelberg SDM, LNCS 6538, pp 101--112(2010).","journal-title":"LNCS"},{"key":"e_1_2_1_5_1","volume-title":"Master of Science in Information Security30 ECTS","author":"Robert Rinnan","year":"2005","unstructured":"Robert Rinnan \"Benefits of Centralized Log file Correlation\" Master?s Thesis , Master of Science in Information Security30 ECTS , Department of Computer Science and Media Technology Gj\u00f8vik University College , ( 2005 ). Robert Rinnan \"Benefits of Centralized Log file Correlation\" Master?s Thesis, Master of Science in Information Security30 ECTS, Department of Computer Science and Media Technology Gj\u00f8vik University College, (2005)."},{"volume-title":"Evidence Gathering System for Input Attacks in (IJCNS) International Journal of Computer and Network Security","author":"Deepak Singh Tomar J.L.","key":"e_1_2_1_6_1","unstructured":"Deepak Singh Tomar , J.L. Rana and S.C. Shrivastava , Evidence Gathering System for Input Attacks in (IJCNS) International Journal of Computer and Network Security Vol. 1 , No. 1, October (2009). Deepak Singh Tomar, J.L. Rana and S.C. Shrivastava, Evidence Gathering System for Input Attacks in (IJCNS) International Journal of Computer and Network Security Vol. 1, No. 1, October (2009)."},{"key":"e_1_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/332159.332161"},{"key":"e_1_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.5555\/579090"},{"key":"e_1_2_1_9_1","doi-asserted-by":"crossref","unstructured":"L.K.J. Grace V. Maheshwari D. Nagamalai \"Analysis of web logs and web user in web mining\" International journal of Network Security & its Applications (IJNSA) Vol. 3 No 1. January(2011).  L.K.J. Grace V. Maheshwari D. Nagamalai \"Analysis of web logs and web user in web mining\" International journal of Network Security & its Applications (IJNSA) Vol. 3 No 1. January(2011).","DOI":"10.5121\/ijnsa.2011.3107"},{"key":"e_1_2_1_10_1","doi-asserted-by":"crossref","unstructured":"N.K. Singh D.S. Tomar B.N. Roy \"An Approach to understand the End User Behavior through log analysis\" International Journal of Computer applications Vol5-No11 August(2010).  N.K. Singh D.S. Tomar B.N. Roy \"An Approach to understand the End User Behavior through log analysis\" International Journal of Computer applications Vol5-No11 August(2010).","DOI":"10.5120\/953-1330"},{"key":"e_1_2_1_11_1","unstructured":"H. Kozushko \"Intrusion detection: host-based and network-based intrusion detection systems\" Independent Study September 11 (2003).  H. Kozushko \"Intrusion detection: host-based and network-based intrusion detection systems\" Independent Study September 11 (2003)."},{"issue":"4","key":"e_1_2_1_12_1","first-page":"611","article-title":"Arul Lawrence Selvakumar, \"Current Intrusion Detection Techniques in Information Technology -- A Detailed Analysis","volume":"65","author":"Mohammed Nazer A","year":"2011","unstructured":"G. Mohammed Nazer and A . Arul Lawrence Selvakumar, \"Current Intrusion Detection Techniques in Information Technology -- A Detailed Analysis \", European Journal of Scientific Research , ISSN 1450-216X Vol. 65 No. 4 , pp. 611 -- 624 ( 2011 ). G. Mohammed Nazer and A. Arul Lawrence Selvakumar, \"Current Intrusion Detection Techniques in Information Technology -- A Detailed Analysis\", European Journal of Scientific Research, ISSN 1450-216X Vol.65 No.4, pp. 611--624(2011).","journal-title":"European Journal of Scientific Research"},{"key":"e_1_2_1_13_1","volume-title":"Third Annual IFIP TC-11 WG 11.5 Working Conference on Integrity and Internal Control in Information Systems","author":"Chung C.","year":"1999","unstructured":"Chung , C. , Gertz M. , and Levitt , K . DEMIDS: A Misuse Detection System for Database Systems . In Third Annual IFIP TC-11 WG 11.5 Working Conference on Integrity and Internal Control in Information Systems , Kluwer Academic Publishers , Pages 159--178, November ( 1999 ). Chung, C., Gertz M., and Levitt, K. DEMIDS: A Misuse Detection System for Database Systems. In Third Annual IFIP TC-11 WG 11.5 Working Conference on Integrity and Internal Control in Information Systems, Kluwer Academic Publishers, Pages 159--178, November (1999)."},{"key":"e_1_2_1_14_1","volume-title":"Real Time Technology and Application Symposium, Pp. 124","author":"Lee J.A.","year":"2000","unstructured":"V.C.S. Lee , J.A. Stankovic , S.H. Son , \"Intrusion Detection in Real-time Database Systems Via Time Signatures\" , Real Time Technology and Application Symposium, Pp. 124 , ( 2000 ). V.C.S. Lee, J.A. Stankovic, S.H. Son, \"Intrusion Detection in Real-time Database Systems Via Time Signatures\", Real Time Technology and Application Symposium, Pp. 124, (2000)."},{"key":"e_1_2_1_15_1","volume-title":"Proc. 2nd European Symp. on Research in Computer Security_ESORICS.","volume":"648","author":"Habra B.","year":"1992","unstructured":"N. Habra , B. Le Charlier , A. Mounji , I. Mathieu , Asax : software architecture and rule-based language for universal audit trail analysis, in: Y. Deswarte, G. Eizenberg, J.-J. Quisquater _Eds .., Proc. 2nd European Symp. on Research in Computer Security_ESORICS. , Toulouse, Berlin, Lecture Notes in Computer Science , vol. 648 , Springer, Berlin, November ( 1992 ). N. Habra, B. Le Charlier, A. Mounji, I. Mathieu, Asax: software architecture and rule-based language for universal audit trail analysis, in: Y. Deswarte, G. Eizenberg, J.-J. Quisquater _Eds.., Proc. 2nd European Symp. on Research in Computer Security_ESORICS., Toulouse, Berlin, Lecture Notes in Computer Science, vol. 648, Springer, Berlin, November (1992)."},{"key":"e_1_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/967900.968048"},{"key":"e_1_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSAC.2005.33"},{"key":"e_1_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/CIT.2009.69"},{"key":"e_1_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/1014052.1014084"},{"key":"e_1_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.ijhcs.2009.07.005"},{"key":"e_1_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/1029208.1029210"},{"key":"e_1_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1007\/s12555-009-0102-2"},{"key":"e_1_2_1_23_1","volume-title":"Computer Security Threat Monitoring and Surveillance,' James P","author":"Anderson J. P.","year":"1980","unstructured":"Anderson , J. P. , ' Computer Security Threat Monitoring and Surveillance,' James P . Anderson Company ( 1980 ). Anderson, J. P., 'Computer Security Threat Monitoring and Surveillance,' James P. Anderson Company (1980)."},{"key":"e_1_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2008.15"},{"key":"e_1_2_1_25_1","volume-title":"Detection of Anomalies form user profiles generated from system logs.9th Australian Information Security Conference (AISC","author":"Corney M.","year":"2011","unstructured":"Corney , M. , Mohay , G. , Clark , A. , : Detection of Anomalies form user profiles generated from system logs.9th Australian Information Security Conference (AISC 2011 ). Corney, M., Mohay, G., Clark, A., : Detection of Anomalies form user profiles generated from system logs.9th Australian Information Security Conference (AISC 2011)."},{"key":"e_1_2_1_26_1","volume-title":"Proc of International Workshop on Design and Management of Data Warehouse(DMDW","author":"Sapia C.","year":"1999","unstructured":"Sapia , C. , : On modeling and predicting Query Behaviour in OLAP systems . Proc of International Workshop on Design and Management of Data Warehouse(DMDW 1999 ). Sapia, C., : On modeling and predicting Query Behaviour in OLAP systems. Proc of International Workshop on Design and Management of Data Warehouse(DMDW 1999)."}],"container-title":["ACM SIGSOFT Software Engineering Notes"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2382756.2382771","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2382756.2382771","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T09:34:54Z","timestamp":1750239294000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2382756.2382771"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012,11,27]]},"references-count":26,"journal-issue":{"issue":"6","published-print":{"date-parts":[[2012,11,27]]}},"alternative-id":["10.1145\/2382756.2382771"],"URL":"https:\/\/doi.org\/10.1145\/2382756.2382771","relation":{},"ISSN":["0163-5948"],"issn-type":[{"type":"print","value":"0163-5948"}],"subject":[],"published":{"date-parts":[[2012,11,27]]},"assertion":[{"value":"2012-11-27","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}